EMTrig: Physical Adversarial Examples Triggered by Electromagnetic Injection towards LiDAR Perception


연구 분야: Infrastructure



학회: SENSYS '24: Proceedings of the 22nd ACM Conference on Embedded Networked Sensor Systems


초록

LiDAR sensors measure the environment by emitting lasers and, when combined with deep neural networks (DNNs), can effectively identify surrounding obstacles such as vehicles and pedestrians. Given its crucial role in autonomous driving perception, the security of LiDAR is closely tied to driving safety. Some studies have explored its vulnerabilities to physical-world attacks, such as laser-based attacks or adversarial objects. However, these methods are either extremely difficult to execute or lack stealth and flexibility. In this paper, we propose a novel attack method called EMTrig, which leverages common roadside objects combined with controlled intentional electromagnetic interference (IEMI) targeting specific LiDARs to create flexible and covert adversarial attacks against designated vehicles. This causes the victim vehicle to misidentify roadside objects as obstacles, such as other vehicles, leading to dangerous driving behaviors like sudden stops and lane changes. Unlike conventional adversarial examples, our deployed objects are common items (e.g., signboards) that are harmless without the IEMI trigger but pose a threat only under IEMI attacks, providing better stealthiness and flexibility. Extensive experiments in both digital and physical domains validate the effectiveness of EMTrig, demonstrating its significant threat to LiDAR perception.


Author Profile
Ziwei Liu

State Key Laboratory of Blockchain and Data Security Zhejiang University Hangzhou China

Andorra
Author Profile
Feng Lin

State Key Laboratory of Blockchain and Data Security Zhejiang University Hangzhou China

Andorra
Author Profile
Teshi Meng

State Key Laboratory of Blockchain and Data Security Zhejiang University Hangzhou China

Andorra

📄 논문 정보

발행 연도 2024년
인용수 0
출판 국가 Andorra
사이트 ACM
좋아요 수 0

연관 논문 목록 (264건)